Skip Links

DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Security

Videos

rssRss Feed
Get instant email notification when white papers, webcasts, executive guides are added to our library.  Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.
Audio

BitTorrent blocking; SQL injection attack. Listen now!

Network World 360

Hacker writes Cisco rootkit; Microsoft launches online telescope. Listen now!

Network World 360

Additional Resources

RSS

FEATURED REPORTS

Executive Guide: Storage Heats Up HP

Get the latest on storage technologies that allow IT professionals to better cope with new IT demands. Learn how storage technologies can help you successfully tackle e-Discover, regulatory compliance, green data center initiatives and the data explosion. Get all the details now.

IT Buyer's Guides

View All Buyer's Guides

Free Newsletters

Sign up and receive the latest news, reviews and trends on your favorite technology topics

Save The Date!
What They Are Saying

f**k.me, bang.me, suck.me, etc. etc...- Anonymous

Join the Discussion

IT execs feel the heat as security woes multiply

By Ann Bednarz and Denise Dubie , Network World , 08/28/2006
  • Social Web 
  • Email 
  • Feedback 
  • Close

With security threats increasing and regulation tightening, companies are demanding greater IT accountability - and that can mean being forced to walk the plank after a breach.

AOL fired a researcher and a manager last week, and CTO Maureen Govern resigned after the Dulles, Va., company posted data on search queries made by 650,000 AOL subscribers. Ohio University dismissed two senior IT people this month following news of five security vulnerabilities that exposed the sensitive records of 137,000 alumni.

Fallout from the Department of Veterans Affairs' security debacle is ongoing. The agency fired the analyst who took home a laptop containing data on 26 million veterans that was stolen when burglars broke into his home. The ensuing examination of the agency's security practices led to the departure of several other VA employees, including CISO Pedro Cadenas, who resigned last month.

More:
One IT exec's take on accountability
What do you think? Discuss in our accountability forum.

Security accountability is long overdue, says John Pescatore, a security analyst at Gartner. When a series of worms hit in 2001 and paralyzed businesses, IT staff threw up their hands and blamed vendors. "Five years ago, nobody was responsible and nobody had authority," Pescatore says.

That doesn't fly today. If a company is spending 5% of its IT budget on security, it expects a payoff. "The business side of the organization has learned to live with accountability and is able to talk about revenues and returns," Pescatore says. "IT is getting dragged there, too."

It's not always a reasonable position, says Khalid Kark, an analyst at Forrester Research. IT managers and security managers aren't the ones setting corporate policies, yet they're responsible for enforcing the policies and ensuring security, he says. Recent breaches have led to a surge in security consciousness in the executive suite, but it will take time to filter through the organization. "Meanwhile, corporate boards need to have a scapegoat, and they've got one."

1 | 2 | 3 | 4 |  Next >
Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.
First Name
Last Name
E-mail
Zip Code